PT-2025-14388 · Bamboohr · Bamboohr
Published
2025-04-01
·
Updated
2025-04-05
·
CVE-2025-29033
CVSS v3.1
7.3
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
BambooHR Build version 25.0210.170831-83b08dd
Description
The issue allows a remote attacker to escalate privileges via the
/saml/index.php?r= HTTP GET parameter. This parameter is vulnerable to exploitation, enabling an attacker to gain elevated access.Recommendations
For BambooHR Build version 25.0210.170831-83b08dd, consider restricting access to the
/saml/index.php endpoint until a patch is available. As a temporary workaround, avoid using the r parameter in the affected HTTP GET request to minimize the risk of exploitation.Exploit
Fix
Improper Privilege Management
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Bamboohr